Moore Technology Consulting

Moore Technology Consulting Our Managed IT services help businesses optimize their technology infrastructure.

Moore Technology Consulting provides IT solutions to the White Plains, NY area.

If your business is in Connecticut or New York, one of these regulations applies to you.You just might not know which on...
06/16/2026

If your business is in Connecticut or New York, one of these regulations applies to you.

You just might not know which one β€” or what it actually requires.

Here's a plain-English breakdown:
πŸ₯ HIPAA β€” You handle patient health information in any form. Medical practices, billing services, healthcare vendors. Non-compliance fines start at $100 per violation and scale fast.

🏦 GLBA β€” You're in financial services. Banks, accounting firms, tax preparers, financial advisors. Requires a written information security plan and specific data safeguards.

πŸ—½ NYDFS Cybersecurity Regulation β€” You operate in NY and are regulated by the Department of Financial Services. One of the most aggressive state-level cyber regulations in the country. Annual certification required.

The common thread across all three:
β€” You must have documented security policies
β€” You must control who has access to sensitive data
β€” You must be able to demonstrate what you're doing to protect it
β€” You must have an incident response plan

Most small businesses in Fairfield County, NYC and Westchester that fall under these frameworks have one of two problems:
❌ They don't know they're covered
❌ They know they're covered but haven't documented anything

Both are fixable. Neither is something you want to discover during an audit β€” or after a breach.
We support clients through HIPAA, GLBA, and NYDFS compliance readiness across CT and NY.
Not sure which framework applies to your business? DM me "COMPLY" and we'll tell you exactly where you stand.
πŸ“ Moore Technology Consulting Β· Westport, CT Β· White Plains, NY
🌐 mooretechnologyconsulting.com

We reviewed 12 Microsoft 365 tenants this week following the FBI's Kali365 warning.Here's what we found across businesse...
06/09/2026

We reviewed 12 Microsoft 365 tenants this week following the FBI's Kali365 warning.

Here's what we found across businesses in Fairfield County, NYC and Westchester:
πŸ”΄ 11 out of 12 had device code flow enabled β€” the exact vector Kali365 exploits
πŸ”΄ 9 out of 12 had no conditional access policies configured at all
πŸ”΄ 7 out of 12 had legacy authentication protocols still active
πŸ”΄ 5 out of 12 had inactive admin accounts that had never been reviewed
πŸ”΄ 3 out of 12 had external email forwarding rules nobody knew about

These aren't edge cases. This is the default state of most M365 tenants that have never been hardened.

None of these businesses thought they had a problem.
That's the point.

The Kali365 threat is real and it's active right now. But the bigger issue is that most small businesses in CT and NY are running Microsoft 365 configurations that were set up once and never reviewed β€” leaving doors open that nobody knows exist.

What we did for each tenant this week:
βœ… Blocked device code flow via conditional access
βœ… Disabled legacy authentication protocols
βœ… Removed unknown external forwarding rules
βœ… Flagged inactive admin accounts for review
βœ… Enabled audit logging where it was off

If your M365 tenant has never been reviewed by someone who does this for a living β€” it needs to be.

DM me "KALI365" and we'll run through your configuration. Still no pitch. Just the facts.
πŸ“ Moore Technology Consulting Β· Westport, CT Β· White Plains, NY
🌐 mooretechnologyconsulting.com

When was the last time an employee left your company?Did you:βœ“ Disable their M365 accountβœ— Revoke their OAuth tokens and...
06/02/2026

When was the last time an employee left your company?

Did you:

βœ“ Disable their M365 account
βœ— Revoke their OAuth tokens and active sessions
βœ— Remove them from shared mailboxes
βœ— Deprovision their SaaS app accounts
βœ— Change the shared credentials they knew
βœ— Revoke their VPN access
βœ— Remove them from the password manager vault

Most businesses get the first one. Almost none get all of them.

Every unchecked box is a door that's still open.

We published a complete IT offboarding checklist β€” including what to do before the last day, on the last day, and in the week after.

Link in comments.

DM me if you want us to audit your current offboarding process. We cover CT, Westchester, and NYC.

The FBI just issued an urgent warning about a new Microsoft 365 attack called Kali365.Here's why it matters for your bus...
05/28/2026

The FBI just issued an urgent warning about a new Microsoft 365 attack called Kali365.
Here's why it matters for your business β€” and why MFA alone won't save you.

Kali365 is a Phishing-as-a-Service platform. That means criminals can subscribe to it like a SaaS tool β€” for about $250/month β€” and run sophisticated attacks against your Microsoft 365 environment without any technical skills.

Here's what makes it dangerous:
πŸ”΄ It doesn't steal your password
πŸ”΄ It doesn't need to beat your MFA
πŸ”΄ It captures your OAuth token instead β€” and walks straight in

Here's how it works in plain English:
1️⃣ You get an email that looks like it's from Microsoft or a document-sharing platform
2️⃣ It asks you to visit a real Microsoft page and enter a short device code
3️⃣ You do β€” because the page is legitimate and looks completely normal
4️⃣ The attacker captures your OAuth token in the background
5️⃣ They now have full persistent access to your Outlook, Teams, and OneDrive β€” no password required, no MFA prompt, ever again

This is device code phishing. And it's already hitting businesses in manufacturing, healthcare, finance, and professional services.

The fix isn't complicated β€” but it has to be configured:
βœ… Create a conditional access policy to block device code flow
βœ… Audit your existing device code flow usage first
βœ… Block authentication transfer between devices
βœ… Review active sessions for unauthorized devices right now

We're already reviewing M365 tenant configurations for clients across Fairfield County and Westchester this week.

If you're not sure whether your environment is exposed β€” it probably is by default.
DM me "KALI365" and we'll check your tenant configuration. No pitch. Just the facts.
Source: FBI IC3 PSA I-052126-PSA Β· May 21, 2026

πŸ“ Moore Technology Consulting Β· Westport, CT Β· White Plains, NY
🌐 mooretechnologyconsulting.com

Why MBE certification mattersTwo years ago I was the IT guy small businesses called when something broke.Today Moore Tec...
05/28/2026

Why MBE certification matters

Two years ago I was the IT guy small businesses called when something broke.

Today Moore Technology Consulting is a certified Minority Business Enterprise β€” recognized by both NYS Empire State Development and NYC Small Business Services.

I'm not sharing this to check a box.
I'm sharing it because it represents something I believe in: that businesses in CT and NY β€” regardless of size, budget, or background β€” deserve access to enterprise-grade technology consulting done with integrity.

MTC serves:
🏒 Professional services firms in Fairfield County
βš–οΈ Legal and financial services in Westchester
πŸ™οΈ Small businesses across all five NYC boroughs

We bring the same rigor, the same tools, and the same standards to a 10-person law firm in Stamford that a 500-person company gets from a big-box MSP β€” without the overhead, the account managers, or the runaround.

If you're a business owner in CT or NY who's tired of IT that's reactive, overpriced, or just plain unreliable β€” let's talk.

This is what we built MTC to fix.
πŸ“ Moore Technology Consulting Β· CT | NY
🌐 mooretechnologyconsulting.com

Microsoft 365 is not secure out of the boxMicrosoft 365 is not a security product.It's a productivity platform with secu...
05/26/2026

Microsoft 365 is not secure out of the box

Microsoft 365 is not a security product.
It's a productivity platform with security features β€” and there's a significant difference.
When you buy an M365 license, here's what you get by default:
❌ MFA: off
❌ Legacy authentication protocols: on
❌ External email forwarding: unrestricted
❌ Admin accounts: no extra protection
❌ Audit logging: limited or disabled

Microsoft gives you the tools. They don't configure them for you.
That means thousands of small businesses in CT and NY are running Microsoft 365 right now thinking they're protected β€” when they're actually running a default configuration that any halfway competent attacker knows how to exploit.

Here's what a hardened M365 tenant looks like:
βœ… MFA enforced across all users
βœ… Legacy auth blocked
βœ… Conditional access policies active
βœ… Defender for Business deployed
βœ… Audit logging enabled and reviewed

This isn't advanced security. It's baseline hygiene.
We harden Microsoft 365 environments for businesses across Fairfield County, NYC and Westchester β€” usually in a single engagement.

If you're not sure where your tenant stands, I'll take a look.
DM me "M365" and we'll run through it.
πŸ“ Moore Technology Consulting Β· CT | NY
🌐 https://www.mooretechnologyconsulting.com/microsoft-365

The real cost of downtimeNobody budgets for downtime.But everyone pays for it.Here's what an 8-hour outage actually cost...
05/21/2026

The real cost of downtime

Nobody budgets for downtime.
But everyone pays for it.

Here's what an 8-hour outage actually costs a 20-person professional services firm in NY/CT:
πŸ’Έ Lost billable hours: $8,000–$15,000
πŸ“ž Client calls you can't take: priceless (and not in a good way)
πŸ” Recovery time after systems come back: add another 4–6 hours
πŸ“‰ Staff productivity at 30% for the rest of the week

That's before you factor in reputational damage, missed deadlines, or a client who quietly starts looking elsewhere.

Most outages aren't caused by catastrophic failures.
They're caused by:
β€” An unmonitored server that nobody noticed was degrading
β€” A backup that was "configured" but never tested
β€” A patch that got skipped because nobody had time

Proactive managed IT isn't an expense.
It's the cheapest insurance you'll ever buy.

We monitor, manage, and maintain the infrastructure for businesses across Fairfield County, NYC, and Westchester so outages become the exception β€” not the expectation.

Want to know what's running unmonitored in your environment right now?
DM me "AUDIT" and let's find out.
πŸ“ Moore Technology Consulting Β· Stamford, CT
🌐 mooretechnologyconsulting.com

β€œWe already have someone handling our IT.”I hear this a lot. And I never argue with it.But here’s what I usually find wh...
05/19/2026

β€œWe already have someone handling our IT.”

I hear this a lot. And I never argue with it.

But here’s what I usually find when we do a free assessment:
πŸ” Microsoft 365 licensed β€” but never hardened
πŸ” Backups configured β€” but never tested
πŸ” Antivirus installed β€” but endpoints unmanaged
πŸ” No MFA on email β€” at all
πŸ” DMARC: none

Having IT covered and having IT secured are two very different things.

Most small businesses in CT and NY have someone keeping the lights on. Very few have someone actively managing their risk posture.

The difference only becomes obvious after an incident.

We offer a no-cost IT security assessment for businesses in New York City, Fairfield County and Westchester. No pitch. No pressure. Just a clear picture of where you stand.

If everything checks out β€” great. You’ll know for certain.

If it doesn’t β€” you’ll know what to fix before it costs you.
DM me β€œASSESS” and I’ll set it up.

πŸ“ Moore Technology Consulting Β· Stamford, CT
🌐 mooretechnologyconsulting.com

The human side of security (Huntress SAT)Your firewall didn’t cause your last breach.Your employee did.That’s not a crit...
05/12/2026

The human side of security (Huntress SAT)

Your firewall didn’t cause your last breach.
Your employee did.

That’s not a criticism β€” it’s a statistic. Over 90% of successful cyberattacks start with a human clicking something they shouldn’t have.

The solution isn’t yelling at your staff. It’s training them the right way.

Here’s what most security awareness programs get wrong:
❌ Annual training videos nobody watches
❌ Generic phishing tests with no follow-up
❌ No data on who’s actually at risk

Here’s what actually works:
βœ… Simulated phishing that mirrors real attacks
βœ… Immediate micro-training when someone clicks
βœ… Reporting that shows you exactly where your risk is

We deploy Huntress SAT for our clients because it’s built for the way real SMBs operate β€” not Fortune 500 security teams with dedicated analysts.

One client went from a 40%+ phishing click rate to under 10% in 60 days.
Your team can learn. They just need the right program.

Curious what your current exposure looks like? Let’s talk.
πŸ“ Moore Technology Consulting Β· Stamford, CT
🌐 mooretechnologyconsulting.com

Quietly proud of this one. Moore Technology Consulting is now officially certified as a Minority Business Enterprise (MB...
05/12/2026

Quietly proud of this one.

Moore Technology Consulting is now officially certified as a Minority Business Enterprise (MBE) by both:

β†’ The New York City Department of Small Business Services (NYC SBS)
β†’ New York State Empire State Development (NYS ESD)

For folks who haven't dealt with these processes β€” they're not easy. Months of documentation, financials, ownership verification, on-site reviews. Worth every minute.

What this actually means:

For our existing clients β€” nothing changes. Same team, same service, same commitment to cybersecurity-first IT management.

For new conversations:

We're now eligible for the MWBE set-aside programs that NYC and NY State agencies use to direct contracting dollars to certified minority-owned firms. We can also help our enterprise and GC clients hit their own MWBE spend requirements through real technical work β€” not box-checking.

For the procurement officers, prime contractors, and supplier diversity teams who are part of my network: I'd love to connect and have real conversations about where MTC can add value to your vendor base.

We do managed IT, cybersecurity, Microsoft 365 architecture, and compliance work for SMBs across Fairfield County, Westchester, and the NYC metro region. The certifications open doors. The work earns the relationships.

Grateful for the team and clients who got us here.

Onward.

Eugene

Address

44 S Broadway, Suite 100
White Plains, NY
10601

Opening Hours

Monday 9am - 5pm
Tuesday 9am - 5pm
Wednesday 9am - 5pm
Thursday 9am - 5pm
Friday 9am - 5pm

Alerts

Be the first to know and let us send you an email when Moore Technology Consulting posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to Moore Technology Consulting:

Share